Semperis

Active Directory remains the core identity service for most enterprises and a favorite target in modern ransomware and wiper campaigns. When AD fails, identity-dependent services—email, conferencing, VPN, and critical apps—grind to a halt. And the only thing worse than trying to recover AD is scrambling to do so during a full-blown business crisis.

In this webinar, Josh Wagman, Director of Cyber Resilience Advisors, explains how attackers compromise AD and what it takes to coordinate identity recovery and crisis response so that you can quickly restore identity to a trusted state under real-world conditions.

You’ll learn:

  • How attackers view—and infiltrate—common AD compromise paths and failure modes
  • What breaks when identity is down and how to operate when email, conferencing, and other core services are offline
  • How to build a crisis‑ready blueprint that includes tested AD forest recovery runbooks, decision points, and order of operations to re‑establish trust before you reconnect your systems
  • The essentials for coordination under duress: role clarity, out‑of‑band communications, and a single source of truth for tasks and status
  • How to create a practical checklist to raise readiness before the next incident, informed by real‑world blockers